B

Risk Controls Self-Assessment (RCSA) Control Owner Insider Threat

BNY

Pittsburgh, PA
10 days ago

Job Description

Join BNY as a Risk Controls Self-Assessment Control Owner where you'll lead initiatives to assess and enhance insider threat controls. This role is vital for ensuring compliance and improving risk management strategies within a collaborative team environment.

Key Responsibilities

  • Host and support business units in performing Risk Control Self-Assessments (RCSA) for insider threat controls.
  • Ensure alignment with regulatory requirements and organizational policies throughout the assessment process.
  • Continuously monitor the effectiveness of insider threat controls across the organization.
  • Develop and maintain metrics and reporting mechanisms to evaluate control performance.
  • Design and maintain scorecards to summarize insider threat control performance and effectiveness metrics.
  • Partner with Insider Risk, Compliance, and Audit teams to ensure proper governance and oversight.

Required Qualifications

  • Bachelor's degree in risk management, Business Administration, Cybersecurity, or a related field.
  • 5+ years of experience in risk management, internal controls, audit, or insider threat programs in a highly regulated environment.
  • Strong understanding of RCSA processes and enterprise risk management frameworks (e.g., COSO, NIST).
  • Familiarity with insider threat risks, behaviors, and mitigation strategies in financial institutions.
  • Exceptional analytical and problem-solving skills.
  • Strong written and verbal communication skills.
  • Proficiency in developing metrics, scorecards, and dashboards (e.g., Excel, Power BI, Tableau).
  • Ability to manage multiple priorities and deadlines in a dynamic environment.

Preferred Qualifications

  • Experience with insider threat detection and monitoring tools.
  • Knowledge of regulatory requirements (e.g., FFIEC, SOX, GLBA) and their application to insider risk.
  • Professional certifications such as CISA, CRISC, CISSP, or similar.

Benefits & Perks

Highly competitive compensationFlexible global resources and toolsGenerous paid leaves, including paid volunteer time